NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59923 | CVE-2006-1209 | PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for a users/[USERNAME] file. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60179 | CVE-2006-1470 | OpenLDAP in Apple Mac OS X 10.4 up to 10.4.6 allows remote attackers to cause a denial of service (crash) via an invalid LDAP request that triggers an assert error. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60947 | CVE-2006-2244 | Multiple SQL injection vulnerabilities in Web4Future News Portal allow remote attackers to execute arbitrary SQL commands via the ID parameter to (1) comentarii.php or (2) view.php. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61203 | CVE-2006-2508 | SQL injection vulnerability in tr1.php in YourFreeWorld.com Stylish Text Ads Script allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly involving an attack vector using advertise.php. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61459 | CVE-2006-2774 | Cross-site scripting (XSS) vulnerability in search.php in QontentOne CMS allows remote attackers to inject arbitrary web script or HTML via the search_phrase parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 718 of 17672, showing 5 records out of 88360 total, starting on record 3586, ending on 3590